Age | Commit message (Collapse) | Author | |
---|---|---|---|
2010-09-14 | fix specification of install directories in top level scripts. | Jameson Rollins | |
Various install paths were hard coded in the top level scripts. This was causing problems for non-standard install locations. Also added use of LOCALSTATEDIR variable to specify /var/lib path. | |||
2010-07-04 | Merge remote branch 'dkg/master' | Jameson Rollins | |
2010-07-04 | fix debug message in checkperms | Jameson Rollins | |
2010-07-04 | add keys-for-user subcommand to monkeysphere-authentication | Jameson Rollins | |
This subcommand will output all valid key for a given user. The user's authorized_user_ids file will be read for OpenPGP user IDs, one per line. The ssh-formated RSA keys will be output to stdout. Also included is a simple script that takes the user as it's one argument and exec's this command. This is something that would be suitable for the proposed sshd AuthorizedKeysCommand. | |||
2010-05-06 | reporting new expiration date when key expiry is updated (closes MS #2291) | Daniel Kahn Gillmor | |
2010-05-06 | do not fail or bail when admin interactively declines to publish a key with m-h | Daniel Kahn Gillmor | |
2010-05-06 | support x509 anchors for monkeysphere-host, allow shared anchors between m-a ↵ | Daniel Kahn Gillmor | |
and mh (closes MS #2288) | |||
2010-04-17 | do not try to add to known_hosts if HASH_KNOWN_HOSTS is true but ssh-keygen ↵ | Daniel Kahn Gillmor | |
is not available (includes some comments about how to fix these corner cases). | |||
2010-04-17 | degrade gracefully in the absence of ssh | Daniel Kahn Gillmor | |
2010-04-17 | handling ssh fingerprinting internally with keytrans for sshfprs-for-userid | Daniel Kahn Gillmor | |
2010-04-17 | make comment more nit-pickingly accurate | Daniel Kahn Gillmor | |
2010-04-17 | fix gpg_ssh_fingerprint() in monkeysphere to use internal implementation of ↵ | Daniel Kahn Gillmor | |
ssh fingerprinting | |||
2010-04-17 | monkeysphere-host no longer depends on ssh | Daniel Kahn Gillmor | |
2010-04-17 | keytrans openpgp2sshfpr now prints out the key size and type | Daniel Kahn Gillmor | |
2010-04-17 | added internal openpgp2sshfpr subcommand for keytrans | Daniel Kahn Gillmor | |
2010-03-14 | added comment about why the key file is named with whitespace | Daniel Kahn Gillmor | |
2010-03-14 | deprecate sshfpr; add sshfprs-for-userid (closes: MS #1436) | Daniel Kahn Gillmor | |
2010-03-14 | use msmktempfile instead of raw mktemp -- should be more portable | Daniel Kahn Gillmor | |
2010-03-14 | fix CHECK_KEYSERVER for deprecated keys-from-userid as well | Daniel Kahn Gillmor | |
2010-03-14 | fix typo | Daniel Kahn Gillmor | |
2010-03-14 | avoid checking trustdb from monkeysphere-host (Closes: MS #1957) | Daniel Kahn Gillmor | |
2010-03-14 | fixing an error message in monkeysphere-host | Daniel Kahn Gillmor | |
2010-03-14 | cleaning up monkeysphere-host show-key output | Daniel Kahn Gillmor | |
2010-03-14 | warn if keyserver query fails (Closes: MS #1750) | Daniel Kahn Gillmor | |
2010-03-14 | enable use of hkps (closes: MS #1749) | Daniel Kahn Gillmor | |
2010-03-14 | keys-for-userid now respects MONKEYSPHERE_CHECK_KEYSERVER (Closes: MS ↵ | Daniel Kahn Gillmor | |
#1997); finesse description of CHECK_KEYSERVER in monkeysphere.conf (see: MS #2014) | |||
2010-03-08 | fix my email address | Jameson Rollins | |
2010-02-18 | allow service names to start with a number (synchronizing with the check in ↵ | Daniel Kahn Gillmor | |
get_port_for_service from common). i know of no services named like that, but why be fussy? | |||
2010-02-18 | enforce --no-armor when exporting to openpgp2ssh in case weird gpg.conf ↵ | Daniel Kahn Gillmor | |
options (see bug 1625) | |||
2010-02-02 | add some useful shortcuts for some common commands | Jameson Rollins | |
2010-01-19 | Merge remote branch 'jrollins/master' | Daniel Kahn Gillmor | |
2010-01-19 | re-work monkeysphere-host diagnostics with an eye toward multiple host keys | Daniel Kahn Gillmor | |
2010-01-19 | dump gpg --import error spew to /dev/null during hackish uses of gpg | Daniel Kahn Gillmor | |
2010-01-19 | ignoring time conflict when extracting info in a hacky way from gpg. ↵ | Daniel Kahn Gillmor | |
warnings still come out to stderr | |||
2010-01-19 | accepting "--version" as well as "version" subcommand for monkeysphere-host ↵ | Daniel Kahn Gillmor | |
and monkeysphere-authentication | |||
2010-01-19 | added a few more FIXMEs to check_service_name() | Daniel Kahn Gillmor | |
2010-01-19 | add get_cert_info() to common | Daniel Kahn Gillmor | |
2010-01-18 | removing superfluous eval | Daniel Kahn Gillmor | |
2010-01-18 | tweak loading of fingerprints in multi_key wrapper function, so unnecessary ↵ | Jameson Rollins | |
error messages aren't output | |||
2010-01-18 | no need for recursive removal of a single file | Daniel Kahn Gillmor | |
2010-01-18 | flesh out check for reasonable-looking service names | Daniel Kahn Gillmor | |
2010-01-18 | add 0.28 transition script to generate new host_keys.pub.pgp file, and ↵ | Jameson Rollins | |
remove all ssh_host_rsa_key.pub.gpg file | |||
2010-01-18 | canonicalize prompting to prompt if MONKEYSPHERE_PROMPT != 'false' | Jameson Rollins | |
2010-01-18 | add prompt if a service name is already being used then importing a key or ↵ | Jameson Rollins | |
adding a name. This can be overridden with the MONKEYSPHERE_PROMPT var. | |||
2010-01-18 | monkeysphere-host: reverting from host_fingerprints() to ↵ | Daniel Kahn Gillmor | |
list_primary_fingerprints() | |||
2010-01-18 | made public use of m-h show-keys instead of show-key, fixed stupid ↵ | Daniel Kahn Gillmor | |
field-numbering bug in fingerprint extraction | |||
2010-01-18 | renaming m-h update_gpg_pub_file to update_pgp_pub_file | Daniel Kahn Gillmor | |
2010-01-18 | renaming host_keys.pub.gpg to host_keys.pub.pgp | Daniel Kahn Gillmor | |
2010-01-18 | got rid of monkeysphere-host fprs file | Daniel Kahn Gillmor | |
2010-01-18 | remove reference to HOST_KEY_FPR_FILE | Jameson Rollins | |
except in update_gpg_pub_file, which dkg is going to modify to just hold the host keys and not any other keys (like revoker keys). this file alone can then be used to get host key info for non-priviledged users. |